Zum Inhalt springen

golang-jwt Release Notes

23 Einträge aus 1 Quelle. Zuletzt aktualisiert:

Folge golang-jwt, um die Release Notes in deinen Feed zu holen.

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Jwt von golang-jwt

golang-jwt Jwt Version 4.0.0

Version 4.0.0 ergänzt Go-Modul-Unterstützung mit dem Importpfad github.com/golang-jwt/jwt/v4 und soll abwärtskompatibel zu den v3.x.y-Tags bleiben.

  • Adds Go module support (#41). You can import this package using the following import path:
github.com/golang-jwt/jwt/v4

This release, and any future /v4 work is intended to be backwards-compatible with existing v3.x.y tags.

See the migration guide for more details.

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Jwt von golang-jwt

golang-jwt Jwt Version 3.2.2

Version 3.2.2 behebt ein mögliches Problem bei ungültigem Inhalt von exp, iat oder nbf, unterstützt EdDSA/ED25519, optimiert Allokationen und unterstützt künftig die zwei neuesten Go-Versionen.

  • Starting from this release, we are adopting the policy to support the most 2 recent versions of Go currently available. By the time of this release, this is Go 1.15 and 1.16 (#28).
  • Fixed a potential issue that could occur when the presence of exp, iat or nbf was not required for verification and contained invalid contents, i.e. non-numeric/date. Thanks for @thaJeztah for making us aware of that and @giorgos-f3 for originally reporting it to the formtech fork (#40).
  • Added support for EdDSA / ED25519 (#36).
  • Optimized allocations (#33).

Originalquelle(öffnet in neuem Tab)Problem melden

Angaben zum Datum

Datum aus der Quelle.

Erstmals gesehen am .

Jwt von golang-jwt

golang-jwt Jwt Version 3.2.1

Version 3.2.1 ändert den Importpfad von github.com/dgrijalva/jwt-go zu github.com/golang-jwt/jwt und behebt in VerifyAudience eine Typverwechslung zwischen string und []string (CVE-2020-26160).

  • Import Path Change: See MIGRATION_GUIDE.md for tips on updating your code
    • Changed the import path from github.com/dgrijalva/jwt-go to github.com/golang-jwt/jwt
  • Fixed type confusion issue between string and []string in VerifyAudience (#12). This fixes CVE-2020-26160

Originalquelle(öffnet in neuem Tab)Problem melden